SAP Security Note
High priority
SAP security note 1635447, "Directory Traversal in XX-PART-ISHMED", was released on November 8, 2011. Below are the symptom and SAP recommended solution.
Description
Symptom
The XX-PART-ISHMED component fails to properly validate the file path for user-submitted files. As a result, attackers can overwrite data in the remote system by exploiting this directory traversal vulnerability.
Solution
SAP has released corrections with the specified patches. Users are advised to apply these patches to mitigate the vulnerability. Additionally, correction instructions are available for advance correction implementation.
References
- Note 1639118: Correction Directions for Patch 4
- Note 1526102: IS-H: Directory Traversal Vulnerability in IS-H
- Note 1512396: Potential directory traversals in application N2UX
Full note on SAP: SAP Support Launchpad note 1635447
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
